Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

HTML title during enumeration #764

Open
alfonsocaponi opened this issue Feb 25, 2021 · 6 comments
Open

HTML title during enumeration #764

alfonsocaponi opened this issue Feb 25, 2021 · 6 comments
Labels
enhancement New feature or request in review Should this be accepted?

Comments

@alfonsocaponi
Copy link

It would be very useful collect and report the HTML title during entrypoint enumeration.
I don't know if easy to make...
What do you think? :)

@alfonsocaponi alfonsocaponi added the enhancement New feature or request label Feb 25, 2021
@shelld3v
Copy link
Collaborator

Hi, this is super easy to make, but the problem is it will make the output looks dirty

@alfonsocaponi
Copy link
Author

True, but if it were optional... :)
For example, putting title in square brackets. Just a note, remove "multi spaces" (keep only single spaces) and "carriage return":

200 - 17KB - https://example.com:443/docs/ [Apache Tomcat 8 (8.5.29) - Documentation Index]

In my opinion it would be an added value during bug bounty activities! :)

@shelld3v
Copy link
Collaborator

shelld3v commented Feb 25, 2021

Browsing an URL is one of the most basic skills in bug bounty hunting! You can't do it? 😉

@shelld3v
Copy link
Collaborator

True, but if it were optional... :)

That fact that we can make tons of optional flags, but it will just flood the dirsearch flags. We only focus on important things, and remember that even you see the title, browsing that endpoint is still a must-do action

@alfonsocaponi
Copy link
Author

Yes, I agree with you. It would just be a way to filter through large numbers :)

@shelld3v
Copy link
Collaborator

shelld3v commented Apr 29, 2021

Yes, I agree with you. It would just be a way to filter through large numbers :)

Hello!

I am working on a PR, that allows you to create your own signatures. With a signature (YAML format), any response that matches the regex/text in the signature will be notified in the output. Is this a good replacement for your suggestion?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request in review Should this be accepted?
Projects
None yet
Development

No branches or pull requests

2 participants